Heap Use-After-Free Vulnerability in FFmpeg by VideoLAN
CVE-2024-31578

Currently unrated

Key Information:

Vendor
VideoLAN
Status
Vendor
CVE Published:
17 April 2024

Summary

A vulnerability was identified in FFmpeg version n6.1.1, which could lead to a heap use-after-free condition in the av_hwframe_ctx_init function. This issue may allow attackers to exploit the faulty memory management, potentially leading to unexpected behavior during video processing, denial of service, or arbitrary code execution.

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.